11 Sep
|
Acefone
|
Gurugram
Job Description
About Acefone
n
Acefone,(Formerly Servetel) is a part of RTDS group (founded in 2010). The company focuses on simplifying communication for businesses. We are a product company that's making interactions simple, powerful, and customer focused. Our cloud-based omnichannel Customer Experience (CX) platform, AceX hosts powerful products, including:
n
n
- Interactions Hub: A unified communication platform to host cross-channel customer engagement on a single platform.
n
- Contact Center Studio: A powerful dialer to enhance calling experience between business and customers while boosting agent productivity.
n
- API Connect: A unique communication API suite to assist communication needs for mobile and web applications.
n
- Campaigns: Mass outreach product to connect with last audience in an efficient and productive manner.
n
n
These products are designed to help businesses deliver exceptional experiences at every touchpoint of the customer journey.
n
Headquartered in Gurgaon, we are trusted by 5000+ global businesses and bring seamless communication with industry-leading integrations to ensure an efficient, yet effective CX. Our ISO 27001 certification vouch for our top-notch security and a 99.95% uptime guarantee.
n
Acefone's user-friendly, insight-driven products offer 300+ features, serving different channels, like Voice, WhatsApp, SMS and more. With custom integrations powered by neat APIs, it smoothly aligns with every business' unique demands.
n
Job responsibilities
n
n
- Lead security architecture reviews for new and existing systems, applications, and platforms hosted on AWS, ensuring designs follow secure-by-design principles.
n
- Conduct threat modeling (e.g., STRIDE, attack trees) for applications, services, and infrastructure changes across AWS and Kubernetes environments.
n
- Review high-level and low-level designs (HLD/LLD) from a security perspective and provide actionable, risk-based recommendations.
n
- Define and maintain security architecture standards, patterns, and reference architectures for AWS and Kubernetes workloads.
n
- Partner with engineering and product teams early in the design lifecycle to identify and remediate security risks before implementation.
n
- Review AWS account, network, and workload architectures against security best practices (AWS Well-Architected Framework – Security Pillar, CIS AWS Benchmarks).
n
- Assess IAM policies, roles,
and permission boundaries across AWS environments for least-privilege design.
n
- Review firewall, IDS/IPS, and network security architecture and rule sets to ensure secure segmentation and threat detection across AWS and hybrid environments.
n
- Evaluate the architecture and integration of security tooling — including EDR, Zscaler (SSE/ZTNA), Qualys (vulnerability management), and similar platforms — for coverage gaps and alignment with the overall security architecture.
n
- Review Kubernetes cluster architecture, workload configurations, and RBAC/network policy design for security risks.
n
- Evaluate container image build pipelines, base image hardening, and runtime security controls for containerized workloads.
n
- Perform application-level security architecture reviews, including API design, authentication/authorization models, and data protection.
n
- Identify design-level risks aligned to OWASP Top 10 and relevant threat categories, working with development teams to embed security into the SDLC.
n
- Ensure architecture reviews consider relevant compliance standards and frameworks (ISO 27001, NIST, CIS, SOC 2, PCI-DSS, GDPR as applicable).
n
- Review VoIP configuration, architecture, and best practices to ensure secure, resilient, and compliant voice communication infrastructure.
n
- Act as the Single Point of Contact (SPOC) for DoT (Department of Telecommunications) and CERT-In, and for external communication on security-related matters.
n
- Maintain documentation of architecture review findings, risk decisions, and remediation tracking, and present risk assessments to engineering leadership.
n
- Mentor engineers and junior security staff on secure design principles and threat modeling techniques, and contribute to security awareness training.
n
n
Required Skills
n
n
- Strong hands-on expertise in AWS security architecture (IAM, VPC, KMS, GuardDuty, Security Hub, WAF, Well-Architected Framework – Security Pillar).
n
- Solid experience in Kubernetes and container security (RBAC, network policies, pod security standards, image hardening, service mesh).
n
- Proven experience conducting security architecture reviews and threat modeling for applications and infrastructure.
n
- Strong understanding of application security principles (OWASP Top 10, secure SDLC, API security).
n
- Familiarity with Infrastructure-as-Code (Terraform, CloudFormation) sufficient to review IaC for security misconfigurations.
n
- Working knowledge of security and compliance frameworks: ISO 27001, NIST, CIS Benchmarks, SOC 2, and PCIDSS.
n
- Experience producing HLD/LLD security documentation and architecture diagrams.
n
- Deep understanding of security architecture principles with a Security by Design mindset.
n
- Knowledge of data encryption techniques for data at rest and in transit.
n
- Experience with security tooling relevant to AWS and Kubernetes environments, such as cloud-native security posture tools, container scanning, and SAST/DAST.
n
- Working knowledge of firewall and IDS/IPS architecture and rule design, with the ability to review network security controls for effectiveness and gaps.
n
- Familiarity with reviewing and evaluating security tools such as EDR platforms, Zscaler, Qualys, and similar solutions as part of architecture and vendor security assessments.
n
- Exposure to DevSecOps practices and secure CI/CD pipeline design.
n
- Strong communication and stakeholder management skills, with the ability to present risk clearly to both technical and non-technical audiences.
n
n
Qualifications
n
n
- 5–8+ years of experience in Security Architecture, Application Security, or related security engineering/leadership roles.
n
- Demonstrated experience specifically with AWS and Kubernetes security (multi-cloud experience across Azure or GCP is not required for this role).
n
- Relevant certifications preferred: AWS Certified Security – Specialty, CKS (Certified Kubernetes Security Specialist), CISSP, CCSP, or equivalent.
n
n
Mission: To make communication easy and effective for businesses.
n
Vision: To be the global leader in business communication technologies.
n
Values that drive us:
n
❖ Collaboration - "Together We Achieve More"
n
❖ Integrity - "Upright, all the time"
n
❖ Striving for Excellence - "Brilliance is Basic Benchmark"
n
❖ Customer Centricity - "Partner in success"
n
❖ We Care - "Nurturing a Better Tomorrow"
n
CONTACT INFORMATION
n
Website: https://www.acefone.com
📌 Security Architect (Gurugram)
🏢 Acefone
📍 Gurugram